https://www.securityweek.com/wp-content/uploads/2024/12/file-transfer-Moveit.jpg Organizations are advised to immediately patch a fresh authentication bypass vulnerability affecting the file transfer application Cleo Harmony. Tracked as CVE-2026-84115, the security defect impacts the JWT refresh token logic and allows remote attackers to elevate their privileges via… Read More "Exploit Published for Fresh Cleo Harmony Vulnerability"
Nightmare Eclipse Drops ‘HardBreacher’ Kaspersky Product Exploit
https://www.securityweek.com/wp-content/uploads/2026/04/coding-vulnerability-software-development.jpeg The researcher known as Nightmare Eclipse has dropped another zero-day — this time a privilege escalation exploit targeting a Kaspersky endpoint security product. Nightmare Eclipse, also known as Chaotic Eclipse, has released PoC exploits for many vulnerabilities in recent… Read More "Nightmare Eclipse Drops ‘HardBreacher’ Kaspersky Product Exploit"